netfilter: nft_limit: do not ignore unsupported flags
Bail out if userspace provides unsupported flags, otherwise future extensions to the limit expression will be silently ignored by the kernel. Fixes: c7862a5f ("netfilter: nft_limit: allow to invert matching criteria") Signed-off-by:Pablo Neira Ayuso <pablo@netfilter.org>
Loading
Please register or sign in to comment